[dns-privacy] Barry Leiba's Yes on draft-ietf-dprive-dns-over-tls-08: (with COMMENT)

"Barry Leiba" <barryleiba@computer.org> Wed, 16 March 2016 12:16 UTC

Return-Path: <barryleiba@computer.org>
X-Original-To: dns-privacy@ietf.org
Delivered-To: dns-privacy@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 9B5EC12D95C; Wed, 16 Mar 2016 05:16:56 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Barry Leiba <barryleiba@computer.org>
To: The IESG <iesg@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 6.16.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <20160316121656.21784.18390.idtracker@ietfa.amsl.com>
Date: Wed, 16 Mar 2016 05:16:56 -0700
Archived-At: <http://mailarchive.ietf.org/arch/msg/dns-privacy/FIR1HmyU-O92xPX1dC31_mkiG9o>
Cc: tjw.ietf@gmail.com, dns-privacy@ietf.org, draft-ietf-dprive-dns-over-tls@ietf.org, allison.mankin@gmail.com, dprive-chairs@ietf.org
Subject: [dns-privacy] Barry Leiba's Yes on draft-ietf-dprive-dns-over-tls-08: (with COMMENT)
X-BeenThere: dns-privacy@ietf.org
X-Mailman-Version: 2.1.17
List-Id: <dns-privacy.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dns-privacy/>
List-Post: <mailto:dns-privacy@ietf.org>
List-Help: <mailto:dns-privacy-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dns-privacy>, <mailto:dns-privacy-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 16 Mar 2016 12:16:56 -0000

Barry Leiba has entered the following ballot position for
draft-ietf-dprive-dns-over-tls-08: Yes

When responding, please keep the subject line intact and reply to all
email addresses included in the To and CC lines. (Feel free to cut this
introductory paragraph, however.)


Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
for more information about IESG DISCUSS and COMMENT positions.


The document, along with other ballot positions, can be found here:
https://datatracker.ietf.org/doc/draft-ietf-dprive-dns-over-tls/



----------------------------------------------------------------------
COMMENT:
----------------------------------------------------------------------

-- Section 3.1 --

   A DNS server that supports DNS-over-TLS MUST listen for and accept
   TCP connections on port 853.  By mutual agreement with its clients,
   the server MAY, instead, use a port other than 853 for DNS-over-TLS.

Is it really "instead" (in which case the previous sentence isn't
unqualified "MUST"), or is it "in addition?  That is, which of these is
correct?:

NEW-1
   A DNS server that supports DNS-over-TLS MUST listen for and accept
   TCP connections on port 853.  By mutual agreement with its clients,
   the server MAY, in addition, use a port other than 853 for
   DNS-over-TLS.
END

NEW-2
   A DNS server that supports DNS-over-TLS MUST listen for and accept
   TCP connections on port 853, unless it has mutual agreement with
   its clients to use a port other than 853 for DNS-over-TLS.
END

(And similarly for the client side in the following paragraph.)